The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

How to generate custom Vulnerable Scanning Report?

How to generate custom Vulnerable Scanning Report?

Last updated: Mar 12, 2024 09:25AM UTC | 3 Agent replies | 2 Community replies | How do I?

Academy Lab: "Finding and exploiting an unsused API endpoint" | the sugested solution throws "error: 500"

Hi. I am not sure whether I am just doing something wrong or if the solution for the lab has not been updated. Firstly, I tried to solve the lab on my own, but after countless "internal server error" responses I tried to...

Last updated: Mar 11, 2024 12:24PM UTC | 1 Agent replies | 1 Community replies | How do I?

Reset lab "Web shell upload via Content-Type restriction bypass"

I need the lab "Web shell upload via Content-Type restriction bypass" to be reset. The /home/carlos/secret file was deleted and no longer available to get the solution from.

Last updated: Mar 11, 2024 11:08AM UTC | 3 Agent replies | 2 Community replies | How do I?

automatically scan a Vue application

I can scan a vb.net application. The deep scan ran for 15 hours We also have vue applications. The deep scan only ran for about 15 minutes. Has anyone had luck running the Professional version deep scan on a vue...

Last updated: Mar 11, 2024 10:08AM UTC | 1 Agent replies | 0 Community replies | How do I?

Purchase multiple exam vouchers for engineers on my team

Hi all. Using my credit card I want to purchase three BSCP exam vouchers for three engineers on my team. Is this possible to do this in one transaction? If NO, assuming I have to go through this process three times? =>...

Last updated: Mar 11, 2024 08:56AM UTC | 1 Agent replies | 0 Community replies | How do I?

Error Unknown Host

Issue: Always getting Error Unknown Host regardless of website visited in Burp Browser. Trying to load lab Detail: I am attempting to connect as I did the day prior, on the same connection. Again, this has worked...

Last updated: Mar 08, 2024 08:36PM UTC | 1 Agent replies | 2 Community replies | How do I?

Problem with 2FA bypass using a brute-force attack lab

So I've done this three times so far, using Burp Suite Pro (2024.1.1.4), and I'm having no luck. I'll avoid spoilers, but the short answer is that all the responses I get are HTTP 200, no 302 in sight. I've gone though the...

Last updated: Mar 08, 2024 04:48PM UTC | 1 Agent replies | 1 Community replies | How do I?

HTTP History appear parameter:?category=

Hi, On this page, the video explains testing for SQL injection. When scanning, there is one SQL injection vuln with only path /filter. But when accessing HTTP History, appear parameter:?category= Can you explain...

Last updated: Mar 08, 2024 12:45PM UTC | 1 Agent replies | 2 Community replies | How do I?

Bcheck script for SSL weak cipher suites vulnerability

Is it possible to write BChecks script to detect SSL weak cipher suites used in web server. https://github.com/projectdiscovery/nuclei-templates/blob/main/ssl/weak-cipher-suites.yaml Need help to convert the above...

Last updated: Mar 08, 2024 10:23AM UTC | 1 Agent replies | 0 Community replies | How do I?

Montoya API: Update HttpHeader in Repeater Tab

Is it possible to change a HttpHeader on the HttpRequestResponse selected via a ContextMenuEvent in a Reapeater tab?

Last updated: Mar 08, 2024 09:15AM UTC | 2 Agent replies | 1 Community replies | How do I?

having Difficulties in solving lab

i am trying to solve this lab Lab: Developing a custom gadget chain for Java deserialization . When i am trying to serialise java cookie i am using your githup main.java in repl.it but i am getting an...

Last updated: Mar 07, 2024 11:57AM UTC | 6 Agent replies | 8 Community replies | How do I?

Burp scanner missed to exploit a blind SQL injection

Greetings. I was recently working on a blind SQL vulnerability (oracle database). There was 3 vulnerable parameters on the same request. However burp scanner could not always identify the vulnerability and when that happens...

Last updated: Mar 07, 2024 10:02AM UTC | 1 Agent replies | 0 Community replies | How do I?

Burp Enterprise Controlling False Positive Action to particular User

Is there a way to restrict false positive action to particular user or group may be using Role.? or if there is another way by which i can restrict False positive marking of issue for user(s) let me know. I tried...

Last updated: Mar 07, 2024 09:15AM UTC | 3 Agent replies | 1 Community replies | How do I?

BSCP EXAM

Hello how much time do i have to do the exam , so the voucher expires or it does not expire?

Last updated: Mar 06, 2024 08:53AM UTC | 1 Agent replies | 0 Community replies | How do I?

Unknow Host Problem

1)- Go to your firefox settings, and then open Network Settings. 2)- Go to Connection Settings, and then Activate(Use System Proxy Settings), Not manual. 3)- It worked for me, I hope it works for you too.

Last updated: Mar 05, 2024 11:18PM UTC | 0 Agent replies | 0 Community replies | How do I?

How do I perform API scanning?

I have a Backend REST API application that I want to scan. I am following the steps in https://portswigger.net/burp/documentation/desktop/automated-scanning/api-scans. It says "To run an API scan, click New scan > API scan...

Last updated: Mar 05, 2024 05:19PM UTC | 1 Agent replies | 0 Community replies | How do I?

Activation failed

Hi, I'm getting 'no more activations allowed' error message. Could you please help me reset the activation? Thanks!

Last updated: Mar 05, 2024 01:08PM UTC | 1 Agent replies | 1 Community replies | How do I?

I am unable to create a password for my account

Hi team, I am unable to create a password for my account as it always need to retrieve the temporary password from the forget requests. As couldn't access the labs as i need password to login in the burp browser to complete...

Last updated: Mar 04, 2024 02:01PM UTC | 1 Agent replies | 0 Community replies | How do I?

i need help with burp suite's in browser

I'm doing the Portswigger web academy and am trying to use burp suite's in browser. when i open the browser it's just a basic page. if i try to access the web academy labs in the browser, it asks me to log in to portswigger...

Last updated: Mar 04, 2024 11:12AM UTC | 1 Agent replies | 0 Community replies | How do I?

Rest my labs & material progress

Dear portswigger, Kindly you help resetting my labs & material progress Best regards

Last updated: Mar 04, 2024 09:19AM UTC | 1 Agent replies | 0 Community replies | How do I?

Page 34 of 332

Burp Suite Support Center

Your source for help and advice on all things Burp-related.

Burp Suite Support Center image